BIT-phpmyadmin-2022-0813

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/phpmyadmin/BIT-phpmyadmin-2022-0813.json
JSON Data
https://api.test.osv.dev/v1/vulns/BIT-phpmyadmin-2022-0813
Aliases
Published
2024-03-06T11:01:57.863Z
Modified
2025-05-20T10:02:07.006Z
Summary
PhpMyAdmin exposure of sensitive information
Details

PhpMyAdmin 5.1.1 and before allows an attacker to retrieve potentially sensitive information by creating invalid requests. This affects the lang parameter, the pma_parameter, and the cookie section.

Database specific
{
    "cpes": [
        "cpe:2.3:a:phpmyadmin:phpmyadmin:*:*:*:*:*:*:*:*"
    ],
    "severity": "High"
}
References

Affected packages

Bitnami / phpmyadmin

Package

Name
phpmyadmin
Purl
pkg:bitnami/phpmyadmin

Severity

  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.1.2